<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Eclectic Memes &#187; security</title>
	<atom:link href="http://blog.eclecticmemes.com/tag/security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.eclecticmemes.com</link>
	<description>Fluff from the naval of my mind</description>
	<lastBuildDate>Sun, 05 Feb 2012 14:04:51 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='blog.eclecticmemes.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://0.gravatar.com/blavatar/0975e8ce6bfa2d7187a164ca62604c7f?s=96&#038;d=http%3A%2F%2Fs2.wp.com%2Fi%2Fbuttonw-com.png</url>
		<title>Eclectic Memes &#187; security</title>
		<link>http://blog.eclecticmemes.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://blog.eclecticmemes.com/osd.xml" title="Eclectic Memes" />
	<atom:link rel='hub' href='http://blog.eclecticmemes.com/?pushpress=hub'/>
		<item>
		<title>Mac OS X security exploits are like vampires</title>
		<link>http://blog.eclecticmemes.com/2010/02/06/mac-os-x-security-exploits-are-like-vampires/</link>
		<comments>http://blog.eclecticmemes.com/2010/02/06/mac-os-x-security-exploits-are-like-vampires/#comments</comments>
		<pubDate>Sat, 06 Feb 2010 14:39:33 +0000</pubDate>
		<dc:creator>Mark</dc:creator>
				<category><![CDATA[Computing]]></category>
		<category><![CDATA[Everything Else]]></category>
		<category><![CDATA[Techie Stuff]]></category>
		<category><![CDATA[anti-virus]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[littlesnitch]]></category>
		<category><![CDATA[OS X]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[virus]]></category>
		<category><![CDATA[wifi]]></category>

		<guid isPermaLink="false">http://blog.eclecticmemes.com/?p=461</guid>
		<description><![CDATA[There are currently few exploits for OS X in the wild (oh yes, there are a few, so let&#8217;s not be complacent). There are several reasons for this; primarily, the market share of OS X in the operating system market is small enough that it is less likely to be attacked (why go for 5% <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=461&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There are currently few exploits for OS X in the wild (oh yes, there are a few, so let&#8217;s not be complacent). There are several reasons for this; primarily, the market share of OS X in the operating system market is small enough that it is less likely to be attacked (why go for 5% of a market when you can aim at 90%); second, although OS X has vulnerabilities its core architecture is less prone to attack than certain other OSes out there; third, OS X users are less likely to go in search of hacked software (one of the major malware gateways); finally, OS X users are smarter and better looking than users of other OSes. Okay, I made that last one up.</p>
<p>So, there are fewer exploits for OS X, what&#8217;s all this vampire stuff? <span id="more-461"></span>It is said that a vampire can only enter a private residence if invited in, and the same applies for the vast majority of OS X exploits. Almost all exploits on OS X require you (the user) to install them. You have to take a deliberate actions such as opening an e-mail attachment, running software containing malware (again, &#8216;patches&#8217; claiming to circumvent licenses are a prime source of these), visiting suspect websites (links in e-mail are a prime source of links to iffy websites and should NEVER be clicked unless you know the sender &#8211; double check the real sender and reply address, never trust the display name &#8211; and recognise the actual link address &#8211; NEVER trust the link text).</p>
<p>Protecting your OS X machine is more about not inviting the vampire in than garlanding your environment with garlic:</p>
<ol>
<li><strong>I do not run ant-virus software</strong> (this is the equivalent of garlic, it may be effective but it stinks up the place and is only effective at close range, i.e. the vampire has already made it through the door). Anti-virus software is a massive overhead and, in most cases on OS X, provides a false sense of security and most of it has a history of creating as many problems as it solves. This is not to say I will never run anti-virus software in the future. When the threat outweighs the cost I&#8217;ll be first in line.<br />
I guess a case can be made that running anti-virus software helps out by catching viruses in files and attachments that might infect other OSes if we pass them on, so we would be good citizens by helping stop their spread. But this is like punishing yourself for someone else&#8217;s mistake. Having chosen a secure environment I should make it less secure and slower just so I can protect those who chose a less secure option in the first place? Where&#8217;s the sense in that?</li>
<li><strong>I always use a firewall to block all incoming connections </strong>(except those I specifically allow for periods when I need them).
<ol type="a">
<li>Use <a href="https://www.grc.com/x/ne.dll?bh0bkyd2">Shields Up</a> to check your system for open ports through which naughty people might attack.</li>
<li>Make sure that you are not sharing any services unnecessarily. (Open <em>S</em><em>ystem Preferences&#8230; → Sharing</em> and make sure nothing is selected that you do not mean to be sharing, most especially things like <em>Remote Login</em> or <em>Remote Management</em> should be OFF for most people. I leave everything OFF by default and only turn on sharing when I actually need it, turning it off again as soon as I&#8217;m finished. I do this because I&#8217;m often roaming and using WiFi connections. Any time your WiFi is on you&#8217;re potentially vulnerable, so playing safe is sensible.</li>
</ol>
</li>
<li><strong>I use </strong><a href="http://www.obdev.at/products/littlesnitch/index.html"><strong>LittleSnitch</strong></a><strong> to control all out-going traffic</strong>. This is a great little program. It&#8217;s irritating at first, but once you&#8217;ve used it for a while it is an invaluable tool in ensuring you&#8217;re aware of all the software that&#8217;s trying to connect from your machine to the outside world.</li>
<li><strong>Leave Bluetooth and WiFi off unless actually using them</strong>. (Saves the battery too if your not plugged in.)</li>
<li><strong>Make sure any WiFi connection is encrypted and password protected</strong>. This is especially true when using an <em>ad hoc</em> computer-computer network — always set a password when creating an <em>ad hoc</em> network!</li>
<li><strong>Keep software up to date</strong>.<br />
I always install updates for any application as soon as possible, but especially security updates for OS X. It is very, very rare that this policy causes more trouble than it&#8217;s worth.</li>
<li><strong>Never open attached files in e-mail unless certain of the source</strong>.</li>
<li><strong>Isolate suspected Spam in the mail tool&#8217;s junk/spam folder</strong>. If possible, only review sender and titles (do not open junk mail at all, even in a preview), move any messages that are accidentally junked back into the inbox and add the sender to my address book so it is no longer junked.</li>
<li><strong>Do not allow previews of e-mail messages to display images</strong> unless you explicitly permit it. Alternatively, view all your messages in text only previews.<br />
This one is more of a privacy concern (although some image handling exploits have been known). Spammers commonly use embedded images (linked back to their site) to confirm &#8216;live&#8217; e-mail addresses. as soon as you open the preview your e-mail system effectively announces it&#8217;s presence by visiting the spammers site to fetch the image. Turn off images in preview and selectively turn them on for addresses you know to be safe.</li>
<li><strong>Do not click links in e-mail unless 100% certain of both the source of the e-mail and the link</strong>.</li>
<li><strong>When receiving unsolicited e-mail about billing or account problems from an apparently legitimate source (especially your bank!), DO NOT click the provided link</strong>. Log in to your account on the supplier&#8217;s web site manually and check your account from there. If you cannot verify the account this way, use their support, billing, or sales contact on their website and ask if the e-mail is legitimate before following any link — caution is the better part of valour.</li>
</ol>
<p>No system is perfect and mistakes inevitably get made, but using these common sense precautions I&#8217;ve survived online pretty well problem free since before the WWW started. Sooner or later I do not doubt I&#8217;ll have a problem, it would be unreasonable to expect to spend so much time online without a problem.</p>
<p>Being online a lot and expected to stay problem free is a little like running back and forth across a busy highway and expecting to avoid being hit. No matter how carefully you think you are checking the road on each run, sooner or later your attention will waver, or someone will approach in a stealth car, and you&#8217;ll get hit. The best we can do is be as careful as possible (or stop using the internet/running across the highway).</p>
<br />Filed under: <a href='http://blog.eclecticmemes.com/category/techie-stuff/computing/'>Computing</a>, <a href='http://blog.eclecticmemes.com/category/everything-else/'>Everything Else</a>, <a href='http://blog.eclecticmemes.com/category/techie-stuff/'>Techie Stuff</a> Tagged: <a href='http://blog.eclecticmemes.com/tag/anti-virus/'>anti-virus</a>, <a href='http://blog.eclecticmemes.com/tag/email/'>email</a>, <a href='http://blog.eclecticmemes.com/tag/firewall/'>firewall</a>, <a href='http://blog.eclecticmemes.com/tag/littlesnitch/'>littlesnitch</a>, <a href='http://blog.eclecticmemes.com/tag/os-x/'>OS X</a>, <a href='http://blog.eclecticmemes.com/tag/security/'>security</a>, <a href='http://blog.eclecticmemes.com/tag/virus/'>virus</a>, <a href='http://blog.eclecticmemes.com/tag/wifi/'>wifi</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eclecticmemes.wordpress.com/461/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eclecticmemes.wordpress.com/461/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eclecticmemes.wordpress.com/461/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=461&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eclecticmemes.com/2010/02/06/mac-os-x-security-exploits-are-like-vampires/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/41c439c6892b6a1b53ea8c1686324b4c?s=96&#38;d=monsterid&#38;r=G" medium="image">
			<media:title type="html">Principia IT</media:title>
		</media:content>
	</item>
		<item>
		<title>Putting out in the cloud</title>
		<link>http://blog.eclecticmemes.com/2010/01/07/putting-out-in-the-cloud/</link>
		<comments>http://blog.eclecticmemes.com/2010/01/07/putting-out-in-the-cloud/#comments</comments>
		<pubDate>Thu, 07 Jan 2010 18:00:51 +0000</pubDate>
		<dc:creator>Mark</dc:creator>
				<category><![CDATA[Everything Else]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[encryption]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.eclecticmemes.com/?p=309</guid>
		<description><![CDATA[There is an old poker adage that runs along the line &#8216;once you place your bet into the pot, it&#8217;s no longer your money&#8217;. It is wise to take the same attitude to data you place &#8216;in the cloud&#8217; (a horrible marketing term that translates, more-or-less, into the more mundane &#8216;any data you place on-line&#8217;). <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=309&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>There is an old poker adage that runs along the line &#8216;once you place your bet into the pot, it&#8217;s no longer your money&#8217;. It is wise to take the same attitude to data you place &#8216;in the cloud&#8217; (a horrible marketing term that translates, more-or-less, into the more mundane &#8216;any data you place on-line&#8217;).</p>
<p>Whenever you post to a blog, Facebook, MySpace, or any other forum your data is no longer yours. When you store your backup on .MAC, or any other backup service, when you use DropBox or any of he myriad storage facilities, your data is no longer yours.</p>
<p>At this point I hear cries of, &#8216;but they say it&#8217;s secured&#8217; or &#8216;but only I have the password&#8217; or &#8216;I only allow friends to see my profile&#8217;. Ah, but here&#8217;s the rub. None of these services is truly secure. Not only that, a glance at the license agreements we so blithely click though reveals that we absolve the companies who provide these services of any substantial responsibility to secure out data. Sure, they have a basic duty of care but this is nothing but a fig leaf. Besides, once your data is compromised it&#8217;s too late for any restitution.</p>
<p>One interesting issue of placing information in these services is a knotty legal nicety. Suppose you are a married man storing all of you information on Google&#8217;s services. All you financial dealing, a spreadsheet recording your income/out-goings for example. Now suppose you were to be divorced. If the information were held on a local PC (rather than on Google) then your spouse would have great difficulty getting access to the information. With it all on Google they can subpoena the information direct from Google, you would not even necessarily know they had that information. And this principle applies to more than messy divorce cases.</p>
<p>Hopefully these services will start to offer proper encryption services. Unfortunately at the moment there are technical issues that make proper encryption tricky if the services are to maintain their ubiquity. No doubt, if demand for proper encryption (that is encryption that makes information practically unavailable to anyone other than the owner) these issues will the resolved.</p>
<p>I am not saying we should not use these facilities. I do. A lot. I am simply saying that people should assume that as soon as they put data onto these facilities it will become public knowledge. This is simply the precautionary principle. It is true that for most of people putting data on-line will never be a problem, but by applying the precautionary principle you ensure that it is never a problem.</p>
<br />Posted in Everything Else Tagged: cloud, cloud computing, encryption, security <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eclecticmemes.wordpress.com/309/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eclecticmemes.wordpress.com/309/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eclecticmemes.wordpress.com/309/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=309&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eclecticmemes.com/2010/01/07/putting-out-in-the-cloud/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/41c439c6892b6a1b53ea8c1686324b4c?s=96&#38;d=monsterid&#38;r=G" medium="image">
			<media:title type="html">Principia IT</media:title>
		</media:content>
	</item>
		<item>
		<title>Cloud computing. Good or bad?</title>
		<link>http://blog.eclecticmemes.com/2009/07/14/cloud-computing-good-or-bad/</link>
		<comments>http://blog.eclecticmemes.com/2009/07/14/cloud-computing-good-or-bad/#comments</comments>
		<pubDate>Tue, 14 Jul 2009 21:43:37 +0000</pubDate>
		<dc:creator>Mark</dc:creator>
				<category><![CDATA[Computing]]></category>
		<category><![CDATA[Everything Else]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[cloud computing]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.eclecticmemes.com/?p=166</guid>
		<description><![CDATA[Flavour of the moment in computing architecture is the notion of cloud computing. Whenever I see these new terms (well, newish in the case of cloud computing) being bandied about, particularly by the mainstream media, I immediately start to suspect that it&#8217;s largely hyperbole and marketing fluff. Cloud computing does not disappoint in this respect. <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=166&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Flavour of the moment in computing architecture is the notion of cloud computing. Whenever I see these new terms (well, newish in the case of cloud computing) being bandied about, particularly by the mainstream media, I immediately start to suspect that it&#8217;s largely hyperbole and marketing fluff. Cloud computing does not disappoint in this respect.</p>
<p>The idea that data is stored in a disparate infrastructure and processing power provided by commodity servers is hardly new, but to read the cloud computing lobby&#8217;s position you could be forgiven for thinking we were about to see something totally revolutionary.</p>
<p>What we are seeing of course, is the commercialisation of ideas which, until the last few years, have been maintained internally. Take any large organisation&#8217;s infrastructure in the last ten years and you have, to a large extent, the progenitor of cloud computing. Large, distributed storage facilities, large distributed server centres, and smaller local storage and processing facilities in the shape of desktop machines. Users hold most of their data on remote facilities, neither knowing nor caring about where or how they are physically stored.</p>
<p>There have been many attempts in the past to move from local PC computing to large commodity server processing. The irony being that early computing was based on dumb terminals and large central computing power. The cloud is slightly different, but only in that the provision of storage and service is not concentrated on one physical computer but rather spread about the internet, provided by potentially dozens of providers.</p>
<p>The shift to more browser based applications is no different to the shift from locally implemented drivers to operating systems. As Google are demonstrating, the shift to browser centric computing is an attempt to shift away from operating system dependence. The issue for consumers will be to protect the idea of open standards on browsers. Noticeably, even the mighty Microsoft are beginning to comply with standards in the latest incarnation of IE in order to position themselves in this emerging market.</p>
<h2>Who benefits?</h2>
<p>So, where does the market advantage come from for cloud computing? On the face of it the consumer will be the winner. With a crowded and competitive market of suppliers all using standards compliant protocols and browsers to deliver commodity services (no one should discount the bespoke market just yet) we can expect to get more bang for our buck in the next few years. The downside is trust.</p>
<p>Cloud computing in its purest form demands significant trust from users. Your data resides, not on your local machine, but &#8216;in the cloud&#8217;, which translates into &#8216;on someone else&#8217;s disks&#8217;. Google, Amazon, Microsoft, take your pick. Who do you trust with your information?</p>
<p>From the point of view of organisations supplying the cloud services the model turns you from a one time purchaser (when you buy your computer or software) into a revenue stream. Instead of buying software you buy access to it. Instead of buying a larger disk drive, you buy access to more on-line storage. The insidious thing about this model, from a consumer point of view, is that, like a hire purchase, seeing a few dollars each month leaving your account does not seem as painful as a large lump when you buy the computer and software but over the time you use the application you will almost certainly pay more.</p>
<p>It is inevitable that cloud services will be bundled in combinations that, like cable or satellite TV packages, will seem like value but in fact mean you pay for services you do not use.</p>
<h2>Open Cloud?</h2>
<p>Open source software is possible because many developers provide free time to developing it. You buy the hardware and they provide the software. With the cloud model open source benefits only the cloud suppliers. No longer can the consumer leverage free software into the cloud. Even if you find a cloud supplier willing to let you run an open source application on their infrastructure you will still have to pay for the run-time. It&#8217;s tough to see how open source will survive in the cloud.</p>
<h2>Reliability</h2>
<p>With current computing architectures there is a sense of ownership and problems with servers or storage (or your own PC) are directly under your control. If something happens then, assuming you have another PC and reliable backups, getting up an running is simple enough. Most business deal with these sort of failures every now and then, and most do so with minimal disruption to the business. With the cloud computing model there is an added risk that your supplier goes AWOL.</p>
<p>I have several external suppliers involved in delivering services for my business, one ISP provides my broadband connection, another provides support for my website, another supplier provides video streaming facilities, and another backup facilities. These all have high reliability promises, and they all fail periodically. When they fail I lose my on-line presence in part or as a whole. This is no major problem at the moment but as more of my business moves on-line I become increasingly aware of just how reliable a service needs to be to come close to one I own myself. The probability of system failure is the product of the probability of failure for each link in the supply chain.</p>
<p>Typical uptime promises offered by ISPs are 99.98%. This may seem very good until you realise that this means your ISP can meet this standard but still be completely unavailable for 1.75 hours every year. For a private individual this may not be a major problem, for a business it could be a big problem if that 1.75 hours is during a peak sale period. If there are four suppliers involved in the supply chain, each offering 99.98% reliability the worst case (assuming they meet this promise) means four lots of 1.75 hours downtime, or seven hours lost business.</p>
<p>There are strategies on the cloud that allow organisations and individuals to protect against failure, but at a cost.</p>
<h2>Securing data</h2>
<p>People do seem to be increasingly comfortable handing much of their information over to third parties. Occasionally someone will point out the inequities in a site&#8217;s terms of service, but more often than not people simply click through these without realising just what rights they are surrendering in doing so.</p>
<p>Certainly most information is not worth protecting too much. Does it really matter if your family holiday photo&#8217;s get out on the internet? Probably not. But what about those saucy photo&#8217;s you took with your boyfriend? These you probably would not want floating around. How about your banking details? Or some business plan you&#8217;re working on? What about that great invention that&#8217;s going to make you rich (providing someone does not beat you to the punch)? Or the blockbuster novel you&#8217;re writing? When you&#8217;re data is in the cloud it is no longer entirely under your control.</p>
<p>The internet is awash with horror stories of people sending e-mails without thinking of the consequences, and people losing their jobs because over perfectly innocent blog postings that their employer took exception to. The problems do not stop there once your data is in the cloud.</p>
<p>Consider the situation when a couple divorce. With all the data in your own local control it is fairly difficult for your &#8216;other half&#8217; to get disclosure and almost impossible for them to dig around in your personal data without your knowledge. If this same information is in the cloud a simple subpoena opens the door to all that  information and you are not necessarily notified that they have it.</p>
<p>I suspect there will be a growing market in tools to encrypt data as it goes to cloud storage, although we will all be increasingly reliant on third-party processing power if the cloud computing lobby have their way. When this happens we will be completely reliant on the storage solutions providing sufficient protection to our data as we will have no way to mediate any encryption.</p>
<p>As I said above, for a great deal of information it does not matter a great deal that we entrust it to the cloud (although I do take exception to sites that want some sort of ownership over, for example, my photographs just because I upload them to their disks). It is reasonable to assume that the big service suppliers have a vested interest in maintaining a good reputation for securing information. After all, clients will quickly move to another supplier if they believe their data is at risk. I for one will be very cautious about uploading anything remotely sensitive beyond the borders of my own local network without some serious encryption to which only I have the key!</p>
<br />Posted in Computing, Everything Else Tagged: cloud, cloud computing, security <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/eclecticmemes.wordpress.com/166/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/eclecticmemes.wordpress.com/166/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/eclecticmemes.wordpress.com/166/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=blog.eclecticmemes.com&amp;blog=8203188&amp;post=166&amp;subd=eclecticmemes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://blog.eclecticmemes.com/2009/07/14/cloud-computing-good-or-bad/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/41c439c6892b6a1b53ea8c1686324b4c?s=96&#38;d=monsterid&#38;r=G" medium="image">
			<media:title type="html">Principia IT</media:title>
		</media:content>
	</item>
	</channel>
</rss>
